Beyond Passwords: Understanding Kerberos Ticket Attack

سال انتشار: 1404
نوع سند: مقاله کنفرانسی
زبان: انگلیسی
مشاهده: 1

متن کامل این مقاله منتشر نشده است و فقط به صورت چکیده یا چکیده مبسوط در پایگاه موجود می باشد.
توضیح: معمولا کلیه مقالاتی که کمتر از ۵ صفحه باشند در پایگاه سیویلیکا اصل مقاله (فول تکست) محسوب نمی شوند و فقط کاربران عضو بدون کسر اعتبار می توانند فایل آنها را دریافت نمایند.

استخراج به نرم افزارهای پژوهشی:

لینک ثابت به این مقاله:

شناسه ملی سند علمی:

CSCG06_268

تاریخ نمایه سازی: 4 مهر 1405

چکیده مقاله:

Organizations increasingly rely on Kerberos for secure authentication. Yet attackers continue to develop sophisticated methods to bypass these protections by exploiting the very mechanisms that grant trusted access. This paper provides an in-depth, human-centered discussion of Kerberos ticket attacks, focusing on the techniques known as Pass-the-Ticket (PTT) and OverPass-the-Hash (OPTH). We explain the inner workings of these attacks, compare implementations in Windows and Linux environments, and review real-world incidents that illustrate their impact. Furthermore, we discuss advanced detection and mitigation measures based on industry best practices and authoritative guidelines. Our goal is to equip security professionals with actionable insights to reinforce network defenses against evolving credential-based threats.

نویسندگان

Fateme zahedi

Bachelor Student in Computer Engineering, Faculty of Technology and Engineering, East of Guilan, University of Guilan, Guilan, Iran

Seyyed Abdorreza Hesam Mohseni

University Lecturer of Computer Engineering, Faculty of Technology and Engineering, East of Guilan, University of Guilan, Guilan, Iran